To prevent some hack, we should deny by default cron execution. Could be nice to add any alternc account in /etc/cron.deny An option should be set to enable local cron service to a specific user.